Profile and Page Layout Best Practices for Life Sciences Cloud
Life Sciences Cloud provides standard security profiles such as the System
Administrator and the Standard User profiles as a template to customize security profiles for
your organization.
Required Editions
Available in: Lightning Experience
Available in: Enterprise and Unlimited Editions with Life
Sciences Cloud, Life Sciences Cloud for Customer Engagement Add-on license, and the
Life Sciences Customer Engagement managed package.
Here are the recommended security best practices for profiles and page layouts.
Use Field Level Security rather than page layouts to hide fields from users. Field Level
Security is a safer method for restricting accessibility to data due to compliance
regulations. This also helps minimize the number of page layouts. Page layouts prevent a
user from seeing fields but does not prevent them from seeing fields in Salesforce
reports. Only field level security completely prevents access to fields.
Always use the least possible number of profiles. Minimizing the number of profiles
reduces the amount of security profile field level security settings you must update when
you add a new field to an object. Rename unused profiles to include ‘dep_’ to move them
out of your way.
Always use the least possible number of page layouts. This decreases the likelihood of
inconsistencies for different record types. Consider using Dynamic Forms instead for ease
of maintenance.
If you consider adding Security Exclusion to bypass enforcement of user access
permissions in triggers, you must evaluate this decision very carefully before
implementation. While the Salesforce Platform allows you to bypass user permissions,
Salesforce doesn't recommend it because CRM is a point in time system, and audits of the
system can sometimes lead to inaccurate assessments.
Did this article solve your issue?
Let us know so we can improve!
Loading
Salesforce Help | Article
Cookie Consent Manager
General Information
Required Cookies
Functional Cookies
Advertising Cookies
General Information
We use three kinds of cookies on our websites: required, functional, and advertising. You can choose whether functional and advertising cookies apply. Click on the different cookie categories to find out more about each category and to change the default settings.
Privacy Statement
Required Cookies
Always Active
Required cookies are necessary for basic website functionality. Some examples include: session cookies needed to transmit the website, authentication cookies, and security cookies.
Functional Cookies
Functional cookies enhance functions, performance, and services on the website. Some examples include: cookies used to analyze site traffic, cookies used for market research, and cookies used to display advertising that is not directed to a particular individual.
Advertising Cookies
Advertising cookies track activity across websites in order to understand a viewer’s interests, and direct them specific marketing. Some examples include: cookies used for remarketing, or interest-based advertising.